Optimal Threshold Signatures in Bitcoin

Fuente: arXiv
Saved in:
Bibliographic Details
Main Authors: Ray, Korok, Saraswathi, Sindura
Format: Preprint
Published: 2025
Subjects:
Online Access:
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1866916977340055552
author Ray, Korok
Saraswathi, Sindura
author_facet Ray, Korok
Saraswathi, Sindura
contents We formulate the design of a threshold signature scheme as made possible on cryptocurrency protocols like Bitcoin. The funds are secured by an m-of-n threshold signature, where at least m signatures are needed to unlock the funds. A user designs this scheme knowing that a malicious attacker can also obtain the signatures with some probability. Higher thresholds offer more security, but also risk locking the user out of his own funds. The optimal threshold balances these twin effects. Interventions like increasing the security or usability of the signatures allow for higher thresholds. We model dynamic threshold signature schemes, where the probability of a user or attacker obtaining signatures decays with time. A dynamic threshold signature scheme is optimal, and increasing security or usability allows for higher thresholds and longer time locks.
format Preprint
id arxiv_https___arxiv_org_abs_2509_25408
institution arXiv
publishDate 2025
record_format arxiv
spellingShingle Optimal Threshold Signatures in Bitcoin
Ray, Korok
Saraswathi, Sindura
Cryptography and Security
Theoretical Economics
We formulate the design of a threshold signature scheme as made possible on cryptocurrency protocols like Bitcoin. The funds are secured by an m-of-n threshold signature, where at least m signatures are needed to unlock the funds. A user designs this scheme knowing that a malicious attacker can also obtain the signatures with some probability. Higher thresholds offer more security, but also risk locking the user out of his own funds. The optimal threshold balances these twin effects. Interventions like increasing the security or usability of the signatures allow for higher thresholds. We model dynamic threshold signature schemes, where the probability of a user or attacker obtaining signatures decays with time. A dynamic threshold signature scheme is optimal, and increasing security or usability allows for higher thresholds and longer time locks.
title Optimal Threshold Signatures in Bitcoin
topic Cryptography and Security
Theoretical Economics
url https://arxiv.org/abs/2509.25408